CVE-2011-2766

Publication date

2011-09-23 10:00:00

Family

mitre

State

PUBLISHED

Description

The FCGI (aka Fast CGI) module 0.70 through 0.73 for Perl, as used by CGI::Fast, uses environment variable values from one request during processing of a later request, which allows remote attackers to bypass authentication via crafted HTTP headers.